Loading HuntDB...

Ivanti Connect Secure, Policy Secure and ZTA Gateways Stack-Based Buffer Overflow Vulnerability

Added April 4, 2025 Due April 11, 2025 CVE-2025-22457
Overdue Ivanti / Connect Secure, Policy Secure and ZTA Gateways CWE-121

Description

Ivanti Connect Secure, Policy Secure and ZTA Gateways contains a stack-based buffer overflow vulnerability that allows a remote unauthenticated attacker to achieve remote code execution.

Required Action

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

References

Additional Information

Catalog Version
2025.04.04
Catalog Released
April 4, 2025
Days Until Due
0 days
Last Updated
5 months, 3 weeks ago